Skip to main navigation Skip to main content Skip to page footer

Security Advisories

All Advisories

TYPO3-SA-2010-012: Multiple vulnerabilities in TYPO3 Core

It has been discovered that TYPO3 Core is vulnerable to Cross-Site Scripting (XSS), Open Redirection, SQL Injection, Broken Authentication and Session Management, Insecure Randomness, Information Disclosure, Arbitrary Code Execution

SECURITY-ISSUES-IN-SEVERAL-THIRD-PARTY-TYPO3-EXTENSIONS-INCLUDING-FRONTEND-USER-REGISTRATION-SR-FEUSER-REGISTER-404-ERROR-PAGE-HANDLING-ERROR-404-HANDLING-AND-TIP-A-FRIEND-TIPAFRIEND: Security issues in several third party TYPO3 extensions including "Frontend User Registration" (sr_feuser_register), "404 Error Page Handling" (error_404_handling) and "Tip-A-Friend" (tipafriend)

Security vulnerabilities have been discovered in the third party TYPO3 extensions including sr_feuser_register, error_404_handling and tipafriend